Vulnerability Name: | CVE-2018-4126 (CCN-152360) | ||||||||||||
Assigned: | 2018-10-30 | ||||||||||||
Published: | 2018-10-30 | ||||||||||||
Updated: | 2019-04-05 | ||||||||||||
Summary: | A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5, iTunes 12.9 for Windows, iCloud for Windows 7.7. | ||||||||||||
CVSS v3 Severity: | 7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H) 6.8 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
6.8 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
| ||||||||||||
Vulnerability Type: | CWE-119 | ||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2018-4126 Source: XF Type: UNKNOWN apple-macos-cve20184126-priv-esc(152360) Source: CCN Type: Apple security document HT209193 About the security content of macOS Mojave 10.14.1, Security Update 2018-001 High Sierra, Security Update 2018-005 Sierra Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT209106 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT209107 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT209108 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT209139 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT209140 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT209141 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT209193 Source: CCN Type: ZDI-18-1341 Apple macOS nsurlstoraged Out-Of-Bounds Read Information Disclosure Vulnerability Source: CCN Type: ZDI-18-1341 Apple macOS nsurlstoraged Out-Of-Bounds Read Information Disclosure Vulnerability Source: CCN Type: ZDI-18-1342 Apple macOS nsurlstoraged Out-Of-Bounds Read Information Disclosure Vulnerability Source: CCN Type: ZDI-18-1342 Apple macOS nsurlstoraged Out-Of-Bounds Read Information Disclosure Vulnerability | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
BACK |